Skip to content

Commit d2bc459

Browse files
tgurr6543
authored andcommitted
Add secure/httpOnly attributes to the lang cookie (go-gitea#9690) (go-gitea#14279)
1 parent 4be59eb commit d2bc459

File tree

1 file changed

+9
-7
lines changed

1 file changed

+9
-7
lines changed

routers/routes/routes.go

Lines changed: 9 additions & 7 deletions
Original file line numberDiff line numberDiff line change
@@ -247,13 +247,15 @@ func NewMacaron() *macaron.Macaron {
247247
}
248248

249249
m.Use(i18n.I18n(i18n.Options{
250-
SubURL: setting.AppSubURL,
251-
Files: localFiles,
252-
Langs: setting.Langs,
253-
Names: setting.Names,
254-
DefaultLang: "en-US",
255-
Redirect: false,
256-
CookieDomain: setting.SessionConfig.Domain,
250+
SubURL: setting.AppSubURL,
251+
Files: localFiles,
252+
Langs: setting.Langs,
253+
Names: setting.Names,
254+
DefaultLang: "en-US",
255+
Redirect: false,
256+
CookieHttpOnly: true,
257+
Secure: setting.SessionConfig.Secure,
258+
CookieDomain: setting.SessionConfig.Domain,
257259
}))
258260
m.Use(cache.Cacher(cache.Options{
259261
Adapter: setting.CacheService.Adapter,

0 commit comments

Comments
 (0)